CFOtech US - Technology news for CFOs & financial decision-makers
United States
American Edition · 2026

The Ultimate Guide to Security Operations Centres

A curated American edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Security Operations Centres (SOCs).

What to know about Security Operations Centres

A Security Operations Centre (SOC) serves as the critical hub for monitoring, detecting, and responding to cybersecurity threats within organisations. Covering a wide spectrum of digital environments, SOCs integrate advanced technologies such as AI, machine learning, and automation tools to enhance threat detection and incident response capabilities.

Exploring recent developments in this field reveals insights on evolving challenges like alert fatigue, skills shortages, and the increasing complexity of cyberattack surfaces. Readers can learn how organisations leverage innovations in SOC-as-a-Service, AI-driven threat hunting, and next-generation platforms to build adaptable, efficient security operations tailored to their needs.

Whether you are an IT professional, security analyst, or business leader, following stories under the 'Security Operations Centre' tag offers valuable perspectives on managing cyber risk, improving operational efficiency, and preparing your organisation for the dynamic cybersecurity landscape ahead.

American Security Operations Centres News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Security Operations Centres

Reviews

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Security Operations Centres News

Hexnode links UEM to ServiceNow incident management
Workplace

Hexnode links UEM to ServiceNow incident management

IT teams can now manage device incidents and remote fixes from ServiceNow, cutting console-hopping and improving audit trails across Hexnode UEM.

This month

Permiso launches risk score engine for identity security
Threat intelligence

Permiso launches risk score engine for identity security

Security teams gain a way to prioritise compromised accounts, with Permiso's new engine scoring human, machine and AI identities on a 0-to-100 scale.

This month

CISA uses Anthropic AI to hunt flaws in federal code
Supply Chain

CISA uses Anthropic AI to hunt flaws in federal code

The pilot could speed up vulnerability hunting across government systems, but it also leaves human teams to verify and fix each AI flag.

This month

Hakimo raises USD $12 million in growth funding round
Productivity

Hakimo raises USD $12 million in growth funding round

Demand for AI security systems is rising as Hakimo says its monitoring reduces incidents and guard costs for property owners.

This month

Picus launches AI platform to validate real exploits
IT Department

Picus launches AI platform to validate real exploits

Security teams may be able to cut false alarms as Picus says its new platform proves whether a vulnerability can actually be exploited.

This month

Intezer launches custom AI agents for security teams
Productivity

Intezer launches custom AI agents for security teams

Security teams could cut repetitive case work as Intezer's beta lets them build AI agents for reports, handover notes and rule tuning.

This month

iboss launches free AI discovery service for firms
Identity and Access Management

iboss launches free AI discovery service for firms

Security teams can now map shadow AI use in hours, as the free tier shows prompts, users and risk across popular tools.

This month

Cisco powers U.S. Open with secure event networking
Unified Communications

Cisco powers U.S. Open with secure event networking

Reliable Wi-Fi and cyber security helped organisers keep broadcasts, ticketing and fan services running at the U.S. Open.

This month

Skyhawk AI Red Team seizes AWS organisation in seconds
Cyber attacks

Skyhawk AI Red Team seizes AWS organisation in seconds

A financial services cloud was taken over in seconds in a test, highlighting how approved permissions can still let attackers reach full AWS control.

Last month

Cynomi adds automation & AI for MSP vulnerability work
Productivity

Cynomi adds automation & AI for MSP vulnerability work

Managed service providers could cut hours of manual vulnerability work per client as the update links scans, remediation and audit evidence.

Last month

Buoyant adds trust anchor rotation in Linkerd 2.20
Risk & Compliance

Buoyant adds trust anchor rotation in Linkerd 2.20

Security teams gain less risky certificate changes as Buoyant's Linkerd 2.20 automates trust anchor rotation and cuts control-plane memory use.

Last month

Internal AI systems emerge as top breach risk: report
Threat intelligence

Internal AI systems emerge as top breach risk: report

Security teams are struggling to spot intrusions until after data is stolen, with 85% of leaders reporting AI-linked incidents or near misses.

Last month

Federal cybersecurity report flags supply chain gaps
Managed Services

Federal cybersecurity report flags supply chain gaps

Many defence suppliers still lack visibility into software risks, as more than a quarter reported a supply chain compromise last year.

Last month

iCOUNTER names Ali Waezzadah as Chief Information Security Officer
Digital Transformation

iCOUNTER names Ali Waezzadah as Chief Information Security Officer

The hire comes as the cyber risk company expands into third-party and supply chain defence, with attacks on connected networks growing more persistent.

Last month

1Kosmos names Roger Hale as Chief Information Security Officer
Digital Transformation

1Kosmos names Roger Hale as Chief Information Security Officer

The hire comes as firms face rising identity fraud risks in account recovery, device enrolment and privileged access workflows.

Last month

Intezer launches MCP server for security AI agents
Threat intelligence

Intezer launches MCP server for security AI agents

The new server lets security teams feed Claude and Codex with case history and triage logic, reducing manual alert handling.

Last month

Corelight adds passive asset visibility to Open NDR
Internet of Things

Corelight adds passive asset visibility to Open NDR

Security teams can now spot unmanaged devices and services on live traffic as Corelight extends Open NDR with passive asset classification.

Last month

Myriad360 duo named to CRN's Next-Gen leaders list
IT Industry

Myriad360 duo named to CRN's Next-Gen leaders list

The recognition underscores growing demand for cyber advisers who can tie technical decisions to business risk as threats and cloud use intensify.

Last month

FIRST raises 2026 vulnerability forecast to 66,000 CVEs
Chief Information Security Officer

FIRST raises 2026 vulnerability forecast to 66,000 CVEs

Security teams face a heavier patching burden next year, with disclosure volumes now tracking far above FIRST's earlier estimate.

Last month

Horizon3.ai & Brinqa team up on exposure management
Threat intelligence

Horizon3.ai & Brinqa team up on exposure management

Enterprises could cut remediation noise as attacker-validated findings are ranked against business context, ownership and exploit paths.

Last month

Job Moves